cve/2023/CVE-2023-4814.md

18 lines
799 B
Markdown
Raw Normal View History

2024-05-25 21:48:12 +02:00
### [CVE-2023-4814](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-4814)
![](https://img.shields.io/static/v1?label=Product&message=Data%20Loss%20Prevention%20Endpoint%20for%20Windows&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=11.10.100.17%3C%2011.10.101.32%09%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-250%3A%20Execution%20with%20Unnecessary%20Privileges&color=brighgreen)
### Description
A Privilege escalation vulnerability exists in Trellix Windows DLP endpoint for windows which can be abused to delete any file/folder for which the user does not have permission to.
### POC
#### Reference
- https://kcm.trellix.com/corporate/index?page=content&id=SB10407
#### Github
No PoCs found on GitHub currently.